Showing posts with label security. Show all posts
Showing posts with label security. Show all posts

Sunday, April 20, 2008

ISPs' Error Page Ads Let Hackers Hijack Entire Web, Researcher Discloses | Threat Level from Wired.com

ISPs' Error Page Ads Let Hackers Hijack Entire Web, Researcher Discloses | Threat Level from Wired.com:
By Ryan Singel April 19, 2008 | 2:00:00

Seeking to make money from mistyped website names, some of the United States' largest ISPs instead created a massive security hole that allowed hackers to use web addresses owned by eBay, PayPal, Google and Yahoo, and virtually any other large site.

The vulnerability was a dream scenario for phishers and cyber attackers looking for convincing platforms to distribute fake websites or malicious code."